Step-by-step guide

How to give agency access to Google Analytics (GA4)

Last updated: August 2026

How to give agency access to Google Analytics (GA4): use GA4 property-level user management — the agency is added as a user with a chosen role, using their Google account. Open Admin → Property → Property access management, add the agency, choose the access level, and confirm. You never share a password and can remove access anytime.

Before you start

Have these ready — it's what onboarding stalls on:

Step-by-step

  1. In GA4, click Admin (bottom left).
  2. Under Property, click Property access management.
  3. Click the + then Add users.
  4. Enter the agency's Google account email.
  5. Choose a role (Viewer, Analyst, Editor, Administrator) and save.
Where 90% of onboardings fail: Clients often add the agency at account level instead of property level, over-granting access. Requesting the exact property and role avoids it.

Which access level to grant

Grant the minimum the work needs. On Google Analytics (GA4), the levels are:

Access level / roleWhat it can do
ViewerSee reports and configurations; no changes.
AnalystViewer plus create and edit explorations, audiences and comparisons. Common for reporting agencies.
EditorFull control of settings except user management. Common for agencies building the setup.
AdministratorEverything including managing users. Grant sparingly.

How long it takes, and who does what

1–2 minutes. Add the user and choose a role; access is immediate — no acceptance step needed on their side.

What you (the client) do

Open Admin → Property → Property access management and grant the access — a few minutes.

What the agency does

Accept and confirm from their side, then start work.

How to check it worked

Access is granted when:

If it doesn't work

The most common problems and how to fix them:

Added at account level instead of property level

Account-level access grants every property in the account — usually too much. Remove it and re-add at the specific property under Property access management.

“You do not have permission to add users”

You need the Administrator role. Ask the current admin to grant it or to add the agency.

Agency can't see data

Check they were added to the right property (GA4 accounts can contain several) and that data collection is active.

Why you don't share a password

You add the agency by their own Google email — never your password. Access is scoped to the property and role you choose and is removable instantly. The agency logs in with their own Google account and 2FA.

The faster way: one link

Everything above is why agencies switch to a single link. HandItSafe requests exactly this Google Analytics (GA4) access for you — the client approves through Google Analytics (GA4)'s official process in about three minutes, no password shared, and keeps a panel to remove it anytime. When the engagement ends, removing access is one tap with a full log.

FAQ

Giving Google Analytics (GA4) access — questions

Does the agency need my Google password for GA4?

No. You add them as a user by their own Google email. They log in with their account, never yours.

What GA4 role should an agency get?

Analyst or Editor is usually enough to build reports and explorations. Administrator is only needed to manage other users.

Can I remove GA4 access when we stop working together?

Yes, instantly from Property access management. HandItSafe surfaces this in the client's panel too.

Property vs account access — which should I grant?

Property. Account-level access exposes every property under the account. Grant at the specific property the agency needs.

What GA4 role does a reporting agency need?

Analyst is usually enough — it lets them build explorations and audiences without changing your setup.

Keep reading

Related guides

Skip the whole thing — send one link.

HandItSafe requests exactly this access in one link. No passwords. Your client keeps a panel to remove it anytime.